当前位置:网站首页>Cobalt Strike安装教程
Cobalt Strike安装教程
2022-06-24 20:21:00 【小胡yhu】
CobaltStrike
CobaltStrike是一款渗透测试神器,被业界人称为CS神器。CobaltStrike分为客户端与服务端,服务端是一个,客户端可以有多个,可被团队进行分布式协团操作。
CobaltStrike集成了端口转发、服务扫描,自动化溢出,多模式端口监听,windows exe 木马生成,windows dll 木马生成,java 木马生成,office 宏病毒生成,木马捆绑。钓鱼攻击包括:站点克隆,目标信息获取,java 执行,浏览器自动攻击等等强大的功能!
Cobaltstrike teamserver的启动:
开启Cobaltstrike teamserver和运行GUI界面均需要Java环境,电脑上必须把Java装好,自行百度。
解压之后,看到文件中有这几个文件。直接运行
./teamserver 192.168.1.115 12345678
192.168.1.115 //网卡IP地址
12345678 //密码
启动客户端
# ./start.sh
这里host填kali的ip,密码就是刚刚我们启动的密码,用户名默认neo就行,端口也是默认50050。
启动后的客户端:
CobaltStrike的使用
CobaltStrike模块
· New Connection:打开一个新连接窗口
· Preferences:偏好设置,就是设置CobaltStrike外观的
· Visualization:将主机以不同的权限展示出来(主要以输出结果的形式展示)
· VPN Interfaces:设置VPN接口
· Listeners:创建监听器
· Script Interfaces:查看和加载CNA脚本
· Close:关闭
cobaltstrike
设置监听器
设置Attack
寻找靶机漏洞,执行命令
靶机上线
提权
边栏推荐
- Thermodynamic diagram display correlation matrix
- 2022年全国最新消防设施操作员(高级消防设施操作员)模拟题及答案
- 2022熔化焊接与热切割复训题库模拟考试平台操作
- Mobile security tool apktool
- 图片旋转移动缩放渐变
- 通过kubernetes可视化界面(rancher)安装kibana
- Preliminary understanding of qtoolbutton
- 2021-04-18
- Source code analysis the problem that fragments cannot be displayed in the custom ViewGroup
- 【Redis实现秒杀业务③】超卖问题之乐观锁具体实现
猜你喜欢
在企业级开发过程中我发现有位同事用select * from where 条件 for update
Text editor for QT project practice -- Episode 9
ros(24):error: invalid initialization of reference of type ‘xx’ from expression of type ‘xx’
最新QQ微信域名防红PHP程序源码+强制跳转打开
Scala IO read by character
2022r1 quick opening pressure vessel operation test questions and answers
51 single chip microcomputer multi computer communication
Usage of ViewModel and livedata in jetpack
Easy to wear - drop down radio
Syntax highlighting of rich text
随机推荐
The acceleration of 100 km is only 5.92 seconds, and the willanda high-performance version leads with the strength of high-energy products
A website for programmers with a monthly salary of 30K
Infotnews | is the development of domestic NFT limited to digital collections?
断言(assert)的用法
2021-02-15
The problem of multiple callback of video ads stimulated by applets (offcolse problem)
指南针炒股软件怎么样?安全吗?
Only positive integers can be entered in the text box
大厂高频软件测试面试题和答案都帮你准备好啦,备战金九银十
Use and click of multitypeadapter in recycleview
Helm chart warehouse operation
Scala IO read by character
Mobile security tool -dex2jar
Mobile security tool apktool
Binder mechanism and Aidl communication example
启动服务11111
Scala template method pattern
The basic principle and application of iterator and enhanced for
C# 闭包的垃圾回收
Decoupling pages and components using lifecycle